DDS (Ver_09-03-16.01) - NTFSx86
Run by Steven Guiles at 19:42:35.07 on Thu 04/16/2009
Internet Explorer: 7.0.5730.11 BrowserJavaVersion: 1.6.0_13
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.511.210 [GMT -4:00]
AV: ESET NOD32 Antivirus 3.0 *On-access scanning enabled* (Updated)
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
svchost.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Documents and Settings\Steven Guiles\Desktop\dds.pif
C:\WINDOWS\system32\wuauclt.exe
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.google.com/
uSearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
mWindow Title = Microsoft Internet Explorer provided by Comcast
mSearch Bar =
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = 127.0.0.1
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
TB: &Google: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\googletoolbar.dll
EB: {4528BBE0-4E08-11D5-AD55-00010333D0AD} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [OM_Monitor] c:\program files\olympus\olympus master\Monitor.exe -NoStart
uRun: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "c:\program files\common files\ahead\lib\NMBgMonitor.exe"
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [DeadAIM] rundll32.exe "c:\program files\aim95\\DeadAIM.ocm",ExportedCheckODLs
mRun: [OM_Monitor] c:\program files\olympus\olympus master\FirstStart.exe
mRun: [NeroFilterCheck] c:\program files\common files\ahead\lib\NeroCheck.exe
mRun: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [Ad-Watch] c:\program files\lavasoft\ad-aware\AAWTray.exe
StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe
IE: &Google Search - c:\program files\google\googletoolbar.dll/cmsearch.html
IE: Backward &Links - c:\program files\google\googletoolbar.dll/cmbacklinks.html
IE: Cac&hed Snapshot of Page - c:\program files\google\googletoolbar.dll/cmcache.html
IE: Lookup on Merriam Webster - file://c:\program files\iespell\Merriam Webster.HTM
IE: Lookup on Wikipedia - file://c:\program files\iespell\wikipedia.HTM
IE: Si&milar Pages - c:\program files\google\googletoolbar.dll/cmsimilar.html
IE: Translate into English - c:\program files\google\googletoolbar.dll/cmtrans.html
IE: {669B269B-0D4E-41FB-A3D8-FD67CA94F646} -
http://www.comcast.net/IE: {8828075D-D097-4055-AA02-2DBFA9D85E8A} -
http://www.comcastsupport.com/IE: {97809617-3937-4F84-B335-9BB05EF1A8D4} -
http://online.comcast.net/help/IE: {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - c:\program files\aim95\aim.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} c:\program files\partygaming\partypoker\runapp.exe - c:\program files\partygaming\partypoker\runapp.exe\inprocserver32 does not exist!
DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} - hxxp://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/3/9/8/398422c0-8d3e-40e1-a617-af65a72a0465/LegitCheckControl.cab
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab
DPF: {3E68E405-C6DE-49FF-83AE-41EE9F4C36CE} - hxxp://office.microsoft.com/officeupdate/content/opuc2.cab
DPF: {48DD0448-9209-4F81-9F6D-D83562940134} - hxxp://lads.myspace.com/upload/MySpaceUploader1006.cab
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1239502760031
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {9AA73F41-EC64-489E-9A73-9CD52E528BC4} - hxxp://zone.msn.com/binGame/ZAxRcMgr.cab
DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} - hxxp://cdn2.zone.msn.com/binFramework/v10/ZIntro.cab56649.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} - hxxp://playgames.comcast.net/Gameshell/GameHost/1.0/OberonGameHost.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab
DPF: {D54160C3-DB7B-4534-9B65-190EE4A9C7F7} - hxxp://zone.msn.com/bingame/feed/default/SproutLauncher.cab
DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} - hxxp://ax.phobos.apple.com.edgesuite.net/detection/ITDetector.cab
DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} - hxxp://fdl.msn.com/zone/datafiles/heartbeat.cab
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\steven~1\applic~1\mozilla\firefox\profiles\default.lv3\
FF - prefs.js: browser.startup.homepage -
www.google.comFF - plugin: c:\program files\real\realarcade\plugins\mozilla\npracplug.dll
============= SERVICES / DRIVERS ===============
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009-4-13 64160]
R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [2008-10-24 34824]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2009-3-23 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2009-3-23 72944]
R2 ekrn;Eset Service;c:\program files\eset\eset nod32 antivirus\ekrn.exe [2008-10-24 468224]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2009-3-9 951632]
R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\viewpoint\common\ViewpointService.exe [2007-1-10 24652]
S2 NOD32FiXTemDono;Eset Nod32 Boot;c:\windows\system32\regedt32.exe [2001-8-18 3584]
S3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2009-3-23 7408]
=============== Created Last 30 ================
2009-04-16 19:36 <DIR> --d----- c:\docume~1\alluse~1.win\applic~1\NortonInstaller
2009-04-16 19:33 <DIR> --d-h--- c:\windows\PIF
2009-04-16 16:46 <DIR> a-dshr-- C:\cmdcons
2009-04-16 16:42 161,792 a------- c:\windows\SWREG.exe
2009-04-16 16:42 98,816 a------- c:\windows\sed.exe
2009-04-16 13:00 <DIR> --d----- c:\docume~1\steven~1\applic~1\Malwarebytes
2009-04-16 13:00 15,504 a------- c:\windows\system32\drivers\mbam.sys
2009-04-16 13:00 38,496 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-04-16 12:59 <DIR> --d----- c:\docume~1\alluse~1.win\applic~1\Malwarebytes
2009-04-16 12:59 <DIR> --d----- c:\program files\Malwarebytes' Anti-Malware
2009-04-16 11:01 <DIR> --d----- c:\docume~1\alluse~1.win\applic~1\SUPERAntiSpyware.com
2009-04-16 11:01 <DIR> --d----- c:\program files\SUPERAntiSpyware
2009-04-16 11:01 <DIR> --d----- c:\docume~1\steven~1\applic~1\SUPERAntiSpyware.com
2009-04-16 11:00 <DIR> --d----- c:\program files\common files\Wise Installation Wizard
2009-04-16 10:51 <DIR> --d----- c:\program files\CCleaner
2009-04-16 08:39 284,160 -c------ c:\windows\system32\dllcache\pdh.dll
2009-04-16 08:39 401,408 -c------ c:\windows\system32\dllcache\rpcss.dll
2009-04-16 08:39 110,592 -c------ c:\windows\system32\dllcache\services.exe
2009-04-16 08:39 473,600 -c------ c:\windows\system32\dllcache\fastprox.dll
2009-04-16 08:39 227,840 -c------ c:\windows\system32\dllcache\wmiprvse.exe
2009-04-16 08:39 453,120 -c------ c:\windows\system32\dllcache\wmiprvsd.dll
2009-04-16 08:39 729,088 -c------ c:\windows\system32\dllcache\lsasrv.dll
2009-04-16 08:39 714,752 -c------ c:\windows\system32\dllcache\ntdll.dll
2009-04-16 08:39 617,472 -c------ c:\windows\system32\dllcache\advapi32.dll
2009-04-16 08:38 2,560 -------- c:\windows\system32\xpsp4res.dll
2009-04-16 08:38 1,203,922 -c------ c:\windows\system32\dllcache\sysmain.sdb
2009-04-16 08:38 215,552 -c------ c:\windows\system32\dllcache\wordpad.exe
2009-04-14 11:12 15,688 a------- c:\windows\system32\lsdelete.exe
2009-04-13 22:03 4,096 a--sh--- C:\Thumbs.db
2009-04-13 20:10 64,160 a------- c:\windows\system32\drivers\Lbd.sys
2009-04-13 20:09 <DIR> -cd-h--- c:\docume~1\alluse~1.win\applic~1\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}
2009-04-12 22:29 <DIR> --d----- c:\docume~1\alluse~1.win\applic~1\vsosdk
2009-04-12 20:54 47,360 a------- c:\windows\system32\drivers\pcouffin.sys
2009-04-12 20:54 47,360 a------- c:\docume~1\steven~1\applic~1\pcouffin.sys
2009-04-12 20:53 27,496 a------- c:\windows\system32\mucltui.dll.mui
2009-04-12 20:53 268,648 a------- c:\windows\system32\mucltui.dll
2009-03-21 10:06 989,696 -c------ c:\windows\system32\dllcache\kernel32.dll
==================== Find3M ====================
2009-03-09 05:19 410,984 a------- c:\windows\system32\deploytk.dll
2009-03-06 10:22 284,160 a------- c:\windows\system32\pdh.dll
2009-03-02 20:18 826,368 a------- c:\windows\system32\wininet.dll
2009-02-20 14:09 78,336 a------- c:\windows\system32\ieencode.dll
2009-02-09 08:10 729,088 -------- c:\windows\system32\lsasrv.dll
2009-02-09 08:10 401,408 a------- c:\windows\system32\rpcss.dll
2009-02-09 08:10 714,752 -------- c:\windows\system32\ntdll.dll
2009-02-09 08:10 617,472 -------- c:\windows\system32\advapi32.dll
2009-02-09 07:13 1,846,784 -------- c:\windows\system32\win32k.sys
2009-02-07 19:02 2,066,048 -------- c:\windows\system32\ntkrnlpa.exe
2009-02-06 07:11 110,592 -------- c:\windows\system32\services.exe
2009-02-06 07:08 2,189,056 -------- c:\windows\system32\ntoskrnl.exe
2009-02-06 06:39 35,328 -------- c:\windows\system32\sc.exe
2009-02-03 15:59 56,832 a------- c:\windows\system32\secur32.dll
2009-02-01 13:35 48,583 a------- c:\docume~1\steven~1\applic~1\upd.exe
2008-07-30 20:51 35,296 a------- c:\docume~1\steven~1\applic~1\GDIPFONTCACHEV1.DAT
2005-09-25 13:51 774,144 a------- c:\program files\RngInterstitial.dll
2004-07-22 01:00 0 ac--h--- c:\documents and settings\steven guiles\hpothb07.dat
2008-09-18 22:19 32,768 a--sh--- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008091820080919\index.dat
============= FINISH: 19:45:38.50 ===============
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-03-16.01)
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume2
Install Date: 5/29/2004 10:25:12 PM
System Uptime: 4/16/2009 7:40:55 PM (0 hours ago)
Motherboard: Intel Corporation | | D845EPT2
Processor: Intel(R) Pentium(R) 4 CPU 1.80GHz | X1 | 1794/100mhz
==== Disk Partitions =========================
A: is Removable
C: is FIXED (NTFS) - 75 GiB total, 23.548 GiB free.
D: is CDROM ()
E: is CDROM ()
==== Disabled Device Manager Items =============
Class GUID: {36FC9E60-C465-11CF-8056-444553540000}
Description: Universal Serial Bus (USB) Controller
Device ID: PCI\VEN_8086&DEV_24CD&SUBSYS_01321028&REV_01\3&267A616A&0&EF
Manufacturer:
Name: Universal Serial Bus (USB) Controller
PNP Device ID: PCI\VEN_8086&DEV_24CD&SUBSYS_01321028&REV_01\3&267A616A&0&EF
Service:
==== System Restore Points ===================
RP1752: 1/29/2009 10:03:30 AM - System Checkpoint
RP1753: 1/30/2009 12:57:14 PM - System Checkpoint
RP1754: 1/31/2009 1:15:31 PM - System Checkpoint
RP1755: 2/1/2009 2:15:55 PM - System Checkpoint
RP1756: 2/2/2009 2:27:33 PM - System Checkpoint
RP1757: 2/3/2009 3:15:37 PM - System Checkpoint
RP1758: 2/4/2009 4:15:31 PM - System Checkpoint
RP1759: 2/5/2009 5:14:31 PM - System Checkpoint
RP1760: 2/6/2009 6:14:33 PM - System Checkpoint
RP1761: 2/7/2009 8:38:45 PM - System Checkpoint
RP1762: 2/8/2009 9:34:12 PM - System Checkpoint
RP1763: 2/9/2009 10:45:11 PM - System Checkpoint
RP1764: 2/10/2009 11:33:02 PM - System Checkpoint
RP1765: 2/11/2009 4:44:33 PM - Software Distribution Service 3.0
RP1766: 2/12/2009 5:40:00 PM - System Checkpoint
RP1767: 2/13/2009 5:54:43 PM - System Checkpoint
RP1768: 2/14/2009 6:36:25 PM - System Checkpoint
RP1769: 2/15/2009 6:41:17 PM - Removed ESET NOD32 Antivirus
RP1770: 2/15/2009 6:42:00 PM - Removed ESET NOD32 Antivirus
RP1771: 2/15/2009 6:46:43 PM - Installed ESET NOD32 Antivirus
RP1772: 2/16/2009 6:47:36 PM - System Checkpoint
RP1773: 2/17/2009 8:50:50 PM - System Checkpoint
RP1774: 2/18/2009 9:18:39 PM - System Checkpoint
RP1775: 2/19/2009 9:50:30 PM - System Checkpoint
RP1776: 2/20/2009 11:03:01 PM - System Checkpoint
RP1777: 2/21/2009 11:50:28 PM - System Checkpoint
RP1778: 2/23/2009 12:50:32 AM - System Checkpoint
RP1779: 2/24/2009 2:03:02 AM - System Checkpoint
RP1780: 2/25/2009 2:49:29 AM - System Checkpoint
RP1781: 2/25/2009 8:29:43 AM - Software Distribution Service 3.0
RP1782: 2/26/2009 8:39:37 AM - System Checkpoint
RP1783: 2/27/2009 8:40:21 AM - System Checkpoint
RP1784: 2/28/2009 11:13:29 AM - System Checkpoint
RP1785: 3/1/2009 11:20:43 AM - System Checkpoint
RP1786: 3/2/2009 12:08:43 PM - System Checkpoint
RP1787: 3/3/2009 1:08:43 PM - System Checkpoint
RP1788: 3/4/2009 2:07:45 PM - System Checkpoint
RP1789: 3/5/2009 3:07:50 PM - System Checkpoint
RP1790: 3/6/2009 4:07:45 PM - System Checkpoint
RP1791: 3/7/2009 5:06:56 PM - System Checkpoint
RP1792: 3/8/2009 5:27:10 PM - System Checkpoint
RP1793: 3/9/2009 6:07:54 PM - System Checkpoint
RP1794: 3/10/2009 7:18:58 PM - System Checkpoint
RP1795: 3/11/2009 8:06:54 PM - System Checkpoint
RP1796: 3/12/2009 2:00:25 AM - Software Distribution Service 3.0
RP1797: 3/13/2009 2:12:00 AM - System Checkpoint
RP1798: 3/14/2009 3:12:00 AM - System Checkpoint
RP1799: 3/15/2009 10:37:34 AM - Removed Java(TM) 6 Update 11
RP1800: 3/15/2009 10:38:33 AM - Installed Java(TM) 6 Update 12
RP1801: 3/16/2009 11:09:57 AM - System Checkpoint
RP1802: 3/17/2009 12:09:52 PM - System Checkpoint
RP1803: 3/18/2009 12:47:35 PM - System Checkpoint
RP1804: 3/19/2009 12:51:53 PM - System Checkpoint
RP1805: 3/20/2009 8:23:31 AM - Software Distribution Service 3.0
RP1806: 3/21/2009 9:30:35 AM - System Checkpoint
RP1807: 3/22/2009 9:52:10 AM - System Checkpoint
RP1808: 3/23/2009 10:52:02 AM - System Checkpoint
RP1809: 3/24/2009 11:50:59 AM - System Checkpoint
RP1810: 3/25/2009 12:51:04 PM - System Checkpoint
RP1811: 3/26/2009 1:50:11 PM - System Checkpoint
RP1812: 3/27/2009 2:50:07 PM - System Checkpoint
RP1813: 3/28/2009 3:35:16 PM - System Checkpoint
RP1814: 3/29/2009 10:58:03 PM - System Checkpoint
RP1815: 3/31/2009 10:11:13 AM - System Checkpoint
RP1816: 4/1/2009 6:31:47 PM - Installed Java(TM) 6 Update 13
RP1817: 4/2/2009 9:29:16 PM - System Checkpoint
RP1818: 4/3/2009 10:03:13 PM - System Checkpoint
RP1819: 4/4/2009 10:56:54 PM - System Checkpoint
RP1820: 4/7/2009 8:22:54 AM - System Checkpoint
RP1821: 4/8/2009 6:20:09 PM - System Checkpoint
RP1822: 4/9/2009 9:12:10 PM - System Checkpoint
RP1823: 4/10/2009 9:48:08 PM - System Checkpoint
RP1824: 4/11/2009 8:31:04 PM - Removed Bonjour
RP1825: 4/11/2009 8:32:00 PM - Removed MobileMe Control Panel
RP1826: 4/11/2009 8:32:55 PM - Removed Norton Security Scan
RP1827: 4/11/2009 8:33:51 PM - Removed Safari
RP1828: 4/11/2009 10:16:38 PM - Software Distribution Service 3.0
RP1829: 4/11/2009 10:27:11 PM - Software Distribution Service 3.0
RP1830: 4/12/2009 11:21:33 PM - System Checkpoint
RP1831: 4/13/2009 11:56:54 PM - System Checkpoint
RP1832: 4/15/2009 5:49:02 PM - System Checkpoint
RP1833: 4/16/2009 8:45:57 AM - Software Distribution Service 3.0
RP1834: 4/16/2009 11:01:00 AM - Installed SUPERAntiSpyware Free Edition
RP1835: 4/16/2009 4:43:22 PM - ComboFix created restore point
RP1836: 4/16/2009 5:31:52 PM - Removed Adobe Photoshop CS2
RP1837: 4/16/2009 5:37:51 PM - Removed Apple Mobile Device Support
RP1838: 4/16/2009 5:39:46 PM - Removed Apple Software Update
RP1839: 4/16/2009 5:42:01 PM - Removed HP Memories Disc
RP1840: 4/16/2009 5:42:49 PM - Removed LiveUpdate Notice (Symantec Corporation)
==== Installed Programs ======================
Ad-Aware
Adobe Atmosphere Player for Acrobat and Adobe Reader
Adobe Audition 1.5
Adobe Bridge 1.0
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 7.1.0
Adobe Shockwave Player
Adobe Stock Photos 1.0
AOL Instant Messenger
Autodesk MapGuide(R) Viewer ActiveX Control Release 6.5
Azureus
CCleaner (remove only)
Conexant HSF V92 56K RTAD Speakerphone PCI Modem
Critical Update for Windows Media Player 11 (KB959772)
DeadAIM
Dell ResourceCD
DVD Decrypter (Remove Only)
ESET NOD32 Antivirus
FLAC Installer 1.1.0k (remove only)
Google Toolbar for Internet Explorer
HijackThis 2.0.2
Hotfix for Windows Internet Explorer 7 (KB947864)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB952287)
HP Photo and Imaging 2.0 - All-in-One
HP Photo and Imaging 2.0 - All-in-One Drivers
HP Photo and Imaging 2.0 - hp psc 1200 series
hp psc 1200 series
iTunes
Java(TM) 6 Update 13
Java(TM) 6 Update 7
Logitech Harmony Remote Software 7
Malwarebytes' Anti-Malware
Microsoft .NET Framework (English)
Microsoft .NET Framework (English) v1.0.3705
Microsoft .NET Framework 1.0 Hotfix (KB928367)
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Data Access Components KB870669
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Word 2002
Microsoft Works 2002 Setup Launcher
Microsoft Works 6.0
Microsoft Works Suite Add-in for Microsoft Word
mkw Audio Compression Toolkit
Mozilla Firefox (3.0.9)
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
Nero 7 Ultra Edition
NOD32 v3.0.642 FiX1.2 by TemDono (31 days remaining forever up
NVIDIA Display Driver
OLYMPUS Master
QuickTime
Remote Control USB Driver
Security Update for Windows Internet Explorer 7 (KB928090)
Security Update for Windows Internet Explorer 7 (KB929969)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Internet Explorer 7 (KB937143)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB939653)
Security Update for Windows Internet Explorer 7 (KB942615)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player 10 (KB911565)
Security Update for Windows Media Player 10 (KB917734)
Security Update for Windows Media Player 11 (KB936782)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951376)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB953839)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960715)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB961373)
SoundMAX
Spybot - Search & Destroy 1.2
SUPERAntiSpyware Free Edition
TDK Launcher
Update for Windows XP (KB951072-v2)
Update for Windows XP (KB951978)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
VideoLAN VLC media player 0.6.2
Viewpoint Manager (Remove Only)
Viewpoint Media Player (Remove Only)
Visual C++ 2008 x86 Runtime - (v9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01
WebFldrs XP
WildTangent Multiplayer Library
Winamp
Windows Defender Signatures
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 7
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3
WinRAR archiver
Works Suite OS Pack
Works Synchronization
==== Event Viewer Messages From Past Week ========
4/16/2009 5:39:19 PM, error: Service Control Manager [7023] - The Application Management service terminated with the following error: The specified module could not be found.
4/16/2009 5:25:14 PM, error: Service Control Manager [7031] - The Apple Mobile Device service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
4/16/2009 5:13:52 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Eset Nod32 Boot service to connect.
4/16/2009 5:13:52 PM, error: Service Control Manager [7000] - The Eset Nod32 Boot service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
4/16/2009 1:22:05 PM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC0000001' while processing the file '' on the volume 'HarddiskVolume2'. It has stopped monitoring the volume.
4/14/2009 3:45:25 PM, error: Service Control Manager [7034] - The PC Tools Security Service service terminated unexpectedly. It has done this 1 time(s).
4/14/2009 3:44:11 PM, error: Service Control Manager [7034] - The iPod Service service terminated unexpectedly. It has done this 1 time(s).
4/14/2009 3:44:00 PM, error: Service Control Manager [7031] - The Lavasoft Ad-Aware Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.
4/14/2009 3:42:17 PM, error: Service Control Manager [7034] - The PC Tools Auxiliary Service service terminated unexpectedly. It has done this 1 time(s).
4/14/2009 3:04:09 PM, error: Service Control Manager [7023] - The Windows Firewall/Internet Connection Sharing (ICS) service terminated with the following error: The class is configured to run as a security id different from the caller
4/13/2009 5:39:54 PM, error: Service Control Manager [7034] - The Java Quick Starter service terminated unexpectedly. It has done this 1 time(s).
==== End Of File ===========================